CVE-2016-1504: Buffer Overflow
Published Feb 7, 2017
·Updated
dhcpcd before 6.10.0 allows remote attackers to cause a denial of service (invalid read and crash) via vectors related to the option length.
Affected Software
1 affected component
Dhcpcd Project Dhcpcd<=6.9.4
Remediation
Event History
Feb 7, 2017
CVE Published
via MITRE·03:00 PM
Data Sourced
via MITRE·03:00 PM
Description
Data Sourced
via NVD·03:59 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2016-1504?
CVE-2016-1504 is rated as a moderate severity vulnerability due to its potential for causing denial of service.
2
How do I fix CVE-2016-1504?
To fix CVE-2016-1504, you should upgrade to dhcpcd version 6.10.0 or later.
3
Which software versions are affected by CVE-2016-1504?
CVE-2016-1504 affects dhcpcd versions prior to 6.10.0, specifically up to and including 6.9.4.
4
What type of attack can exploit CVE-2016-1504?
CVE-2016-1504 can be exploited by remote attackers to cause a denial of service through invalid read operations.
5
Is CVE-2016-1504 a local or remote vulnerability?
CVE-2016-1504 is considered a remote vulnerability as it allows attacks over the network.